package com.akbar.security;

import com.akbar.utils.ResponseUtil;
import com.akbar.utils.ResultUtil;
import jakarta.servlet.ServletException;
import jakarta.servlet.http.HttpServletRequest;
import jakarta.servlet.http.HttpServletResponse;
import lombok.extern.slf4j.Slf4j;
import org.springframework.security.core.AuthenticationException;
import org.springframework.security.web.AuthenticationEntryPoint;
import org.springframework.stereotype.Component;

import java.io.IOException;

@Slf4j
@Component
public class CustomAuthenticationEntryPoint implements AuthenticationEntryPoint {

    @Override
    public void commence(HttpServletRequest request,
                         HttpServletResponse response,
                         AuthenticationException authException) throws IOException, ServletException {

        log.error("未认证访问受保护的资源 {}", authException.getMessage());

        ResponseUtil.writeJson(
                response,
                HttpServletResponse.SC_UNAUTHORIZED, // 401
                ResultUtil.error(401, "Unauthorized: " + authException.getMessage())
        );
    }
}
